Product · Integrations

Connect your tools for automated evidence collection

Pull compliance evidence directly from AWS, GitHub, Google Workspace, Okta, Jira, and 17 more tools. No more manual screenshots, exports, or quarterly scrambles. Evidence stays current automatically.

Inside the product

Every connected system, tested on a schedule.

The continuous monitoring screen: ten connected integrations, 103 of 104 tests passing, a 99% pass rate, and a table of test results for each integration.

01The catalogue

Twenty-two connectors and a device agent.

Every connector is read-only, uses the vendor's official API and asks for the minimum scopes it needs. What each one checks is listed beside it.

Cloud

  • Amazon Web ServicesIAM, CloudTrail, S3, RDS, KMS, GuardDuty, Security Hub and 9 more services
  • Google CloudIAM, audit logging, storage, Cloud SQL, GKE, KMS and Security Command Center
  • Microsoft AzureIdentity, RBAC, conditional access, Defender, Key Vault, storage, networking
  • CloudflareDNS, certificates, zone TLS, firewall rules, email authentication

Source control

  • GitHubBranch protection, organisation security settings, code scanning
  • GitLabBranch protection, group security, security features
  • BitbucketWorkspace owners, default branch protection, repository visibility

Identity

  • Google WorkspaceIdentity, groups, Gmail and email authentication, audit and policies
  • Microsoft 365Entra ID, conditional access, auth methods, Defender, Exchange, SharePoint, Teams
  • OktaUsers, groups, MFA and sign-on policies

Endpoint

  • DashlaneTeam members, SSO enforcement, admin roles
  • BitdefenderManaged endpoints, protection state, admin roles

Work

  • JiraAudit log, admin groups, project permissions
  • LinearAdmins, guest accounts, audit log
  • AsanaToken type, admins, members, audit log
  • NotionPublicly shared pages and databases, member visibility
  • Slack2FA and SSO enforcement, admin accounts

Operations

  • SalesforceIdentity, sessions, sharing, apps, audit trail
  • SentrySSO, member 2FA, owners, invites, audit log
  • GrafanaAdmin users, service accounts, legacy API keys
  • StripeAccount status, payouts, onboarding, business profile
  • MercuryToken permissions, account state, cards

Endpoints

  • Evidr device agentMac and Windows endpoint posture: disk encryption, firewall, antivirus, screen lock, password policy

02How it works

Connect in a minute. Evidence for good.

  1. 01

    Connect in 60 Seconds

    OAuth or API key authentication. Most integrations connect in under a minute with read-only permissions.

  2. 02

    Automatic Evidence Pull

    Evidr scans your connected tools and pulls relevant evidence on a schedule you set (hourly, daily, or weekly).

  3. 03

    AI Mapping & Review

    Evidence is automatically mapped to your compliance controls. AI reviews each piece with confidence scoring.

03Why it matters

What you get.

  • 01

    Automated Collection

    Evidence pulled automatically on your schedule. No manual screenshots or exports.

  • 02

    Read-Only Access

    Integrations use minimal read-only permissions. Your data stays secure.

  • 03

    Auto Control Mapping

    Evidence automatically mapped to your compliance controls across frameworks.

  • 04

    Real-Time Sync

    Changes detected and evidence updated in near real-time.

Ready to get audit-ready?

Start on the free Starter plan, or talk to us about SOC 2, ISO 27001, HIPAA or any framework and see the platform on your own stack.